RE: Cracking a Netscreen password

From: Ben Nagy (ben_at_iagu.net)
Date: 09/15/03

  • Next message: Stephen de Vries: "Port 58000"
    To: "'Chris Ess'" <azarin@tokimi.net>
    Date: Mon, 15 Sep 2003 20:19:21 +0200
    
    

    Padding. 24 == 8 * 3 (byte boundaries)

    If I echo something into openssl md5 then into openssl base64 I get 24
    characters (last 2 always ==). It actually mentions this in the Digest::MD5
    documentation....

    This is fun.

    ben

    [...]
    > The string appears to be base64 encoded. However, from the
    > Digest::MD5
    > man page: "A base64 digest will be 22 characters long."
    >
    > Even if you include the always-caps letters, you have 24 characters.

    ---------------------------------------------------------------------------
    FREE Trial!
    New for security consultants and in-house pros: FOUNDSTONE PROFESSIONAL
    and PROFESSIONAL TL software. Fast, reliable vulnerability assessment
    technology powered by the award-winning FoundScan engine. Try it free for 21 days at: http://www.securityfocus.com/sponsor/Foundstone_pen-test_030825
    ----------------------------------------------------------------------------


  • Next message: Stephen de Vries: "Port 58000"